Live data from Hacker News

ZCash (formerly Zerocash/Zerocoin) technology preview

z.cash

31–40 of 117 posts

Re: ZCash (formerly Zerocash/Zerocoin) technology preview

#33

Earlier quoted context omitted.

Two questions I've yet to receive answers on: - my laptop is stolen in a compromised state (eg logged on, nothing left encrypted); can anyone trace my transactions? - I've read suggestions that Zcash themselves can deanonymize every transaction, thanks to generating the initial "Genesis" block. Is that roughly right? (Ignoring obfuscation techniques like getting many other people to create separate signatures) I'm de…

1) Laptop stolen, unlocked, you never encrypted anything: yep, you're hosed as far as I know. How else would your wallet be able to tell you a balance? 2) The creation of the genesis block involves a trust 'game' of sorts, in which many participants are asked to pick a number. The statement from zcash, which a better cryptographer than me could verify, is that only one of the participants need be trustworthy in order…

Ah, two of the Four Horsemen of the Infocalypse rear their ugly heads:

8.3.4. "How will privacy and anonymity be attacked?" [...] like so many other "computer hacker" items, as a tool for the "Four Horsemen": drug-dealers, money-launderers, terrorists, and pedophiles.

https://en.wikipedia.org/wiki/Four_Horsemen_of_the_Infocalyp...

Re: ZCash (formerly Zerocash/Zerocoin) technology preview

#34

Hi folks! I'm the Founder and CEO of the Zcash company. It's really great to have this much interest in a project that we just released in alpha "Technology Preview" form two weeks ago. There are a lot of good questions in here, some of which I answered in an AMA a few days ago: https://forum.bitcoin.com/ama-ask-me-anything/i-m-zooko-wilc... I can't wait to release the next iteration of the Zcash software, in — finge…

Hi Zooko, Has there been any serious discussion about incorporating the results of PQCRYPTO in your protocol so Zcash is still secure and viable (at >= 2^128 security level) after the development of practical quantum computers? http://pqcrypto.eu.org

Hi, I'm one of the ZCash scientists: Section 8.1 in the full paper describes how to get anonymity that survives quantum computers. (http://zerocash-project.org/media/pdf/zerocash-extended-2014...).

The zero-knowledge proof itself offers statistical privacy in the face of unbounded (so more powerful than quantum) attackers. So surprisingly, you are mostly fine. But you would need to take two steps to protect yourself. First, you have to use each zcash address only once.

Second, you need to use a post quantum secure means of notifying the recipient they got a transaction and of the coin commitment openings. The built in mechanism in ZCash, which posts a ciphertext to the blockchain encrypted under the recipients public key is standard off the shelf public key cryptography. It's efficient, but is of course not post quantum secure. Nothing requires that you use this mechanism, however. You can always post a garbage ciphertext and inform the recipient some other way.

Re: ZCash (formerly Zerocash/Zerocoin) technology preview

#35
post #26

Earlier quoted context omitted.

1) Laptop stolen, unlocked, you never encrypted anything: yep, you're hosed as far as I know. How else would your wallet be able to tell you a balance? 2) The creation of the genesis block involves a trust 'game' of sorts, in which many participants are asked to pick a number. The statement from zcash, which a better cryptographer than me could verify, is that only one of the participants need be trustworthy in order…

[deleted]

> I guess I just don't see enhanced ability to enforce laws a compelling enough reason to deny everyone privacy.

I think he's saying the exact opposite - that it'd be short-sighted to _want_ to deanonymize people and to have to deal with those identities.

Re: ZCash (formerly Zerocash/Zerocoin) technology preview

#36
> We believe that privacy strengthens social ties and social institutions, protects societies against their enemies, and helps societies to be more peaceful and more prosperous.

It's time to have a serious conversation about whether this is actually true when it comes to financial privacy.

Our society is governed by money. Money governs our production directly, and it governs our regulations indirectly since votes can be purchased. Governments derive their power from the consent of the governed, but we use money that doesn't allow us to withdraw our consent without opting out of the economy entirely. Your complaints about money in politics or unstoppable violent cartels around the world are complaints about tyranny, and we should be fighting that tyranny.

Anonymous currencies go in the other direction. I'm glad people are building them, but we need to start talking about the implications of using them. Everything about our society will be decided by the people with the most money if people accept anonymous currencies. Democracy isn't possible when you can't hope to detect when influence is being purchased.

We're already most of the way there: dollars are anonymous to everyone except the governments that regulate banks. Since those governments have been purchased, those regulations can only really be used against those who haven't already purchased strong representation in the government already.

I think we need to go in the opposite direction. We need currencies that everyone can track so individuals can decide whose power they'd like to submit to. If I know someone is buying influence and I want to reject their power to do so, I can stop accepting any money they've used in that way. People accept money to influence politics because other people will accept that money. If other people stop accepting that money, it won't be possible to buy influence anymore. The people who sell their goods, services, and labor will set the rules by their decisions about what money to accept. Wealth won't govern our society, production will.

This is merit capitalism. I think it's closer to the world we want to live in. I hope you'll join me in reconsidering whether financial privacy is actually a good thing.

http://meritcapitalism.com/

Re: ZCash (formerly Zerocash/Zerocoin) technology preview

#37

Hi folks! I'm the Founder and CEO of the Zcash company. It's really great to have this much interest in a project that we just released in alpha "Technology Preview" form two weeks ago. There are a lot of good questions in here, some of which I answered in an AMA a few days ago: https://forum.bitcoin.com/ama-ask-me-anything/i-m-zooko-wilc... I can't wait to release the next iteration of the Zcash software, in — finge…

[deleted]

Re: ZCash (formerly Zerocash/Zerocoin) technology preview

#38
post #27

I hope I'm wrong, but if ZCash delivers on the technical promise the blowback from legislators and law enforcement is sure to result in a net loss of privacy for everyone. Enabling illegal profiteering from the very real pain and suffering of others almost always results in government actio (appropriately so); but also legislative over-reaching (eg. mandated sentencing legislations, zero tolerance policies, warrantle…

[deleted]

Re: ZCash (formerly Zerocash/Zerocoin) technology preview

#39
post #27

I hope I'm wrong, but if ZCash delivers on the technical promise the blowback from legislators and law enforcement is sure to result in a net loss of privacy for everyone. Enabling illegal profiteering from the very real pain and suffering of others almost always results in government actio (appropriately so); but also legislative over-reaching (eg. mandated sentencing legislations, zero tolerance policies, warrantle…

I think many prefer non-violent direct action, for good reason. The cost to the government to spy on you is so low, cryptographically enforcing privacy is the only way to guarantee it.
Post reply on HN